Skip to content
Open
Show file tree
Hide file tree
Changes from 14 commits
Commits
Show all changes
57 commits
Select commit Hold shift + click to select a range
ff49ed2
Update @github/copilot to 1.0.64-0 (#1697)
github-actions[bot] Jun 17, 2026
9b3dadf
fix: skip CLI download in build.rs when DOCS_RS env var is set (#1660)
Copilot Jun 17, 2026
8789b28
Update Azure managed identity docs (#1712)
scottaddie Jun 17, 2026
00ebb2c
Bump hono in /test/harness in the npm_and_yarn group across 1 directory
dependabot[bot] Jun 18, 2026
01e4988
Merge pull request #2 from Bixbott/dependabot/npm_and_yarn/test/harne…
Huynhthuongg Jun 18, 2026
1539f10
Create FUNDING.yml
Huynhthuongg Jun 18, 2026
b6a7d67
Rename FUNDING.yml to FUNDING.yml
Huynhthuongg Jun 18, 2026
d8f7285
Create code-coverage.yml
Huynhthuongg Jun 18, 2026
336f18d
Bump org.sonatype.central:central-publishing-maven-plugin
dependabot[bot] Jun 18, 2026
eef1bbd
Create codacy.yml
Huynhthuongg Jun 18, 2026
4ed0ee4
Create jekyll-gh-pages.yml
Huynhthuongg Jun 18, 2026
69d4b68
Create CNAME
Huynhthuongg Jun 18, 2026
e9bf107
Rename byok.md to byok.md
Huynhthuongg Jun 18, 2026
0fbce5f
Rename mcp.md to mcp.md
Huynhthuongg Jun 18, 2026
8bffc6e
Rename authenticate.md to authenticate.md
Huynhthuongg Jun 18, 2026
9e6a690
Rename README.md to README.md
Huynhthuongg Jun 18, 2026
7c4faf4
Create ossar.yml
Huynhthuongg Jun 18, 2026
f42af0a
Create defender-for-devops.yml
Huynhthuongg Jun 18, 2026
a15da2a
Merge branch 'main' into dependabot/maven/java/java-maven-deps-93d6c7…
Huynhthuongg Jun 18, 2026
830a710
Bump org.sonatype.central:central-publishing-maven-plugin from 0.10.0…
Huynhthuongg Jun 18, 2026
bad1c10
Revert "Bump org.sonatype.central:central-publishing-maven-plugin fro…
Huynhthuongg Jun 18, 2026
af2f08d
Revert "Bump org.sonatype.central:central-publishing-maven-plugin fro…
Huynhthuongg Jun 18, 2026
f262871
Merge branch 'github:dependabot/maven/java/java-maven-deps-93d6c7fca3…
Huynhthuongg Jun 18, 2026
54ac97b
Update ty requirement in /python in the all group
dependabot[bot] Jun 18, 2026
2cff87a
Rename README.md to README.md
Huynhthuongg Jun 18, 2026
7023a6a
Revert "Bump org.sonatype.central:central-publishing-maven-plugin fro…
Huynhthuongg Jun 18, 2026
1c7c0ca
Bump the "all" group with 7 updates across multiple ecosystems (#7)
Huynhthuongg Jun 19, 2026
2464064
Bump undici
dependabot[bot] Jun 19, 2026
a3ab542
Rename FUNDING.yml to FUNDING.yml
Huynhthuongg Jun 19, 2026
fd7149c
Update issue templates
Huynhthuongg Jun 19, 2026
d7c2d1d
Bump undici
Huynhthuongg Jun 20, 2026
f26bce3
Merge branch 'github:dependabot/maven/java/java-maven-deps-93d6c7fca3…
Huynhthuongg Jun 20, 2026
0287214
Update issue templates (#15)
Huynhthuongg Jun 20, 2026
f6bffc8
Bump undici
Huynhthuongg Jun 20, 2026
66187b4
Bump undici
Huynhthuongg Jun 21, 2026
4b8e190
Update code-coverage.yml
Huynhthuongg Jun 21, 2026
7da2dcf
Create webpack.yml
Huynhthuongg Jun 21, 2026
1fd2c90
Create go-ossf-slsa3-publish.yml
Huynhthuongg Jun 21, 2026
c24d5da
Create maven-publish.yml
Huynhthuongg Jun 21, 2026
d2dce0e
Create rust.yml
Huynhthuongg Jun 21, 2026
f5c0add
Create dotnet-desktop.yml
Huynhthuongg Jun 21, 2026
1b653df
Create python-package-conda.yml
Huynhthuongg Jun 21, 2026
0d56748
Create azure-webapps-node.yml
Huynhthuongg Jun 21, 2026
f29ece1
Create azure-webapps-python.yml
Huynhthuongg Jun 21, 2026
d38ad88
Create ethicalcheck.yml
Huynhthuongg Jun 21, 2026
9f362dd
Create apisec-scan.yml
Huynhthuongg Jun 21, 2026
3e13491
Create devskim.yml
Huynhthuongg Jun 21, 2026
cd6ca54
Create generator-generic-ossf-slsa3-publish.yml
Huynhthuongg Jun 21, 2026
92d2bc8
Create greetings.yml
Huynhthuongg Jun 21, 2026
244db1d
Create label.yml
Huynhthuongg Jun 21, 2026
2d01d63
Create stale.yml
Huynhthuongg Jun 21, 2026
0aed8cd
Create summary.yml
Huynhthuongg Jun 21, 2026
86aba78
Create mdbook.yml
Huynhthuongg Jun 21, 2026
25686ef
Create nextjs.yml
Huynhthuongg Jun 21, 2026
1df474c
Create hugo.yml
Huynhthuongg Jun 21, 2026
4a70ec9
Update code-coverage.yml
Huynhthuongg Jun 22, 2026
1ed3c0c
Update code-coverage.yml
Huynhthuongg Jun 22, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
15 changes: 15 additions & 0 deletions .github/FUNDING.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,15 @@
# These are supported funding model platforms

github: # Replace with up to 4 GitHub Sponsors-enabled usernames e.g., [user1, user2]
patreon: # Replace with a single Patreon username
open_collective: # Replace with a single Open Collective username
ko_fi: # Replace with a single Ko-fi username
tidelift: # Replace with a single Tidelift platform-name/package-name e.g., npm/babel
community_bridge: # Replace with a single Community Bridge project-name e.g., cloud-foundry
liberapay: # Replace with a single Liberapay username
issuehunt: # Replace with a single IssueHunt username
lfx_crowdfunding: # Replace with a single LFX Crowdfunding project-name e.g., cloud-foundry
polar: # Replace with a single Polar username
buy_me_a_coffee: # Replace with a single Buy Me a Coffee username
thanks_dev: # Replace with a single thanks.dev username
custom: # Replace with up to 4 custom sponsorship URLs e.g., ['link1', 'link2']
61 changes: 61 additions & 0 deletions .github/workflows/codacy.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,61 @@
# This workflow uses actions that are not certified by GitHub.
# They are provided by a third-party and are governed by
# separate terms of service, privacy policy, and support
# documentation.

# This workflow checks out code, performs a Codacy security scan
# and integrates the results with the
# GitHub Advanced Security code scanning feature. For more information on
# the Codacy security scan action usage and parameters, see
# https://github.com/codacy/codacy-analysis-cli-action.
# For more information on Codacy Analysis CLI in general, see
# https://github.com/codacy/codacy-analysis-cli.

name: Codacy Security Scan

on:
push:
branches: [ "main" ]
pull_request:
# The branches below must be a subset of the branches above
branches: [ "main" ]
schedule:
- cron: '24 2 * * 4'

permissions:
contents: read

jobs:
codacy-security-scan:
permissions:
contents: read # for actions/checkout to fetch code
security-events: write # for github/codeql-action/upload-sarif to upload SARIF results
actions: read # only required for a private repository by github/codeql-action/upload-sarif to get the Action run status
name: Codacy Security Scan
runs-on: ubuntu-latest
steps:
# Checkout the repository to the GitHub Actions runner
- name: Checkout code
uses: actions/checkout@v4

# Execute Codacy Analysis CLI and generate a SARIF output with the security issues identified during the analysis
- name: Run Codacy Analysis CLI
uses: codacy/codacy-analysis-cli-action@d840f886c4bd4edc059706d09c6a1586111c540b
with:
# Check https://github.com/codacy/codacy-analysis-cli#project-token to get your project token from your Codacy repository
# You can also omit the token and run the tools that support default configurations
project-token: ${{ secrets.CODACY_PROJECT_TOKEN }}
verbose: true
output: results.sarif
format: sarif
# Adjust severity of non-security issues
gh-code-scanning-compat: true
# Force 0 exit code to allow SARIF file generation
# This will handover control about PR rejection to the GitHub side
max-allowed-issues: 2147483647

# Upload the SARIF file generated in the previous step
- name: Upload SARIF results file
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: results.sarif
1 change: 1 addition & 0 deletions .github/workflows/code-coverage.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@

47 changes: 47 additions & 0 deletions .github/workflows/defender-for-devops.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,47 @@
# This workflow uses actions that are not certified by GitHub.
# They are provided by a third-party and are governed by
# separate terms of service, privacy policy, and support
# documentation.
#
# Microsoft Security DevOps (MSDO) is a command line application which integrates static analysis tools into the development cycle.
# MSDO installs, configures and runs the latest versions of static analysis tools
# (including, but not limited to, SDL/security and compliance tools).
#
# The Microsoft Security DevOps action is currently in beta and runs on the windows-latest queue,
# as well as Windows self hosted agents. ubuntu-latest support coming soon.
#
# For more information about the action , check out https://github.com/microsoft/security-devops-action
#
# Please note this workflow do not integrate your GitHub Org with Microsoft Defender For DevOps. You have to create an integration
# and provide permission before this can report data back to azure.
# Read the official documentation here : https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-github

name: "Microsoft Defender For Devops"

on:
push:
branches: [ "main" ]
pull_request:
branches: [ "main" ]
schedule:
- cron: '30 4 * * 5'

jobs:
MSDO:
# currently only windows latest is supported
runs-on: windows-latest

steps:
- uses: actions/checkout@v4
- uses: actions/setup-dotnet@v4
with:
dotnet-version: |
5.0.x
6.0.x
- name: Run Microsoft Security DevOps
uses: microsoft/security-devops-action@v1.6.0
id: msdo
- name: Upload results to Security tab
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: ${{ steps.msdo.outputs.sarifFile }}
51 changes: 51 additions & 0 deletions .github/workflows/jekyll-gh-pages.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,51 @@
# Sample workflow for building and deploying a Jekyll site to GitHub Pages
name: Deploy Jekyll with GitHub Pages dependencies preinstalled

on:
# Runs on pushes targeting the default branch
push:
branches: ["main"]

# Allows you to run this workflow manually from the Actions tab
workflow_dispatch:

# Sets permissions of the GITHUB_TOKEN to allow deployment to GitHub Pages
permissions:
contents: read
pages: write
id-token: write

# Allow only one concurrent deployment, skipping runs queued between the run in-progress and latest queued.
# However, do NOT cancel in-progress runs as we want to allow these production deployments to complete.
concurrency:
group: "pages"
cancel-in-progress: false

jobs:
# Build job
build:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Setup Pages
uses: actions/configure-pages@v5
- name: Build with Jekyll
uses: actions/jekyll-build-pages@v1
with:
source: ./
destination: ./_site
- name: Upload artifact
uses: actions/upload-pages-artifact@v3

# Deployment job
deploy:
environment:
name: github-pages
url: ${{ steps.deployment.outputs.page_url }}
runs-on: ubuntu-latest
needs: build
steps:
- name: Deploy to GitHub Pages
id: deployment
uses: actions/deploy-pages@v5
56 changes: 56 additions & 0 deletions .github/workflows/ossar.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,56 @@
# This workflow uses actions that are not certified by GitHub.
# They are provided by a third-party and are governed by
# separate terms of service, privacy policy, and support
# documentation.

# This workflow integrates a collection of open source static analysis tools
# with GitHub code scanning. For documentation, or to provide feedback, visit
# https://github.com/github/ossar-action
name: OSSAR

on:
push:
branches: [ "main" ]
pull_request:
# The branches below must be a subset of the branches above
branches: [ "main" ]
schedule:
- cron: '21 16 * * 4'

permissions:
contents: read

jobs:
OSSAR-Scan:
# OSSAR runs on windows-latest.
# ubuntu-latest and macos-latest support coming soon
permissions:
contents: read # for actions/checkout to fetch code
security-events: write # for github/codeql-action/upload-sarif to upload SARIF results
actions: read # only required for a private repository by github/codeql-action/upload-sarif to get the Action run status
runs-on: windows-latest

steps:
- name: Checkout repository
uses: actions/checkout@v4

# Ensure a compatible version of dotnet is installed.
# The [Microsoft Security Code Analysis CLI](https://aka.ms/mscadocs) is built with dotnet v3.1.201.
# A version greater than or equal to v3.1.201 of dotnet must be installed on the agent in order to run this action.
# GitHub hosted runners already have a compatible version of dotnet installed and this step may be skipped.
# For self-hosted runners, ensure dotnet version 3.1.201 or later is installed by including this action:
# - name: Install .NET
# uses: actions/setup-dotnet@v4
# with:
# dotnet-version: '3.1.x'

# Run open source static analysis tools
- name: Run OSSAR
uses: github/ossar-action@v1
id: ossar

# Upload results to the Security tab
- name: Upload OSSAR results
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: ${{ steps.ossar.outputs.sarifFile }}
1 change: 1 addition & 0 deletions CNAME
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
bixbott.dev
Loading